Snowflake PHP PDO Driver is a driver that uses the PHP Data Objects (PDO) extension to connect to the Snowflake database. Snowflake…
GitHub_M·CWE-195·Published 2025-01-29
Snowflake PHP PDO Driver is a driver that uses the PHP Data Objects (PDO) extension to connect to the Snowflake database. Snowflake discovered and remediated a vulnerability in the Snowflake PHP PDO Driver where executing unsupported queries like PUT or GET on stages causes a signed-to-unsigned conversion error that crashes the application using the Driver. This vulnerability affects versions 0.2.0 through 3.0.3. Snowflake fixed the issue in version 3.1.0.
Snowflake PHP PDO Driver is a driver that uses the PHP Data Objects (PDO) extension to connect to the Snowflake database. Snowflake discovered and remediated a vulnerability in the Snowflake PHP PDO Driver where executing unsupported queries like PUT or GET on stages causes a signed-to-unsigned conversion error that crashes the application using the Driver. This vulnerability affects versions 0.2.0 through 3.0.3. Snowflake fixed the issue in version 3.1.0.
Snowflake PHP PDO Driver es un controlador que utiliza la extensión PHP Data Objects (PDO) para conectarse a la base de datos Snowflake. Snowflake descubrió y solucionó una vulnerabilidad en el controlador PHP PDO de Snowflake, en la que la ejecución de consultas no admitidas como PUT o GET en las etapas provoca un error de conversión de firma a no firma que bloquea la aplicación que utiliza el controlador. Esta vulnerabilidad afecta a las versiones 0.2.0 a 3.0.3. Snowflake solucionó el problema en la versión 3.1.0.
| Version | Type | Source | Base | Exp | Impact | Vector |
|---|---|---|---|---|---|---|
| 3.1 | Primary | cve.org | 4.4 | — | — | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H |
| 3.1 | Primary | cve.org | 4.4 | — | — | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H |
| 3.1 | Secondary | NVD | 4.4 | 0.8 | 3.6 | CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H |